|
It also depends upon HOW JavaScript is redirecting with credentials. If it's using AJaX and POSTing the data via form through an SSL connection, that might not be too bad. No different than submitting a standard form through an SSL encrypted connection.
But if it's just using clear-text URL parameters - yeah, that's a "Bozo no-no".
__________________
^_^
If anyone knows of a website that can offer ColdFusion help that isn't controlled by neurotic, pedantic jerks* (stackoverflow.com), please PM me with a link.
* The neurotic, pedantic jerks are not the owners; just the people who are in control of the "popularity contest".
|